CVE-2024-34163

Improper input validation in firmware for some Intel(R) NUC may allow a privileged user to potentially enableescalation of privilege via local access.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:intel:nuc_x15_laptop_kit_lapbc510_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_lapbc510:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:intel:nuc_x15_laptop_kit_lapbc710_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_lapbc710:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:intel:nuc_x15_laptop_kit_lapac71g_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_lapac71g:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:intel:nuc_x15_laptop_kit_lapac71h_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_lapac71h:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:intel:nuc_x15_laptop_kit_lapkc51e_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_lapkc51e:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:intel:nuc_x15_laptop_kit_lapkc71e_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_lapkc71e:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:intel:nuc_x15_laptop_kit_lapkc71f_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_lapkc71f:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:intel:nuc_x15_laptop_kit_laprc510_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_laprc510:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:intel:nuc_x15_laptop_kit_laprc710_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_laprc710:-:*:*:*:*:*:*:*

History

12 Sep 2024, 18:59

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 7.5
v2 : unknown
v3 : 8.2
CWE NVD-CWE-noinfo
CPE cpe:2.3:o:intel:nuc_x15_laptop_kit_laprc710_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_laprc510:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_laprc710:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_lapkc71f:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_x15_laptop_kit_lapac71g_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_x15_laptop_kit_lapbc710_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_lapkc51e:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_lapac71h:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_x15_laptop_kit_lapkc71e_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_lapbc510:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_x15_laptop_kit_lapkc51e_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_x15_laptop_kit_lapkc71f_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_lapbc710:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_x15_laptop_kit_lapbc510_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_lapac71g:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_x15_laptop_kit_lapac71h_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_lapkc71e:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_x15_laptop_kit_laprc510_firmware:*:*:*:*:*:*:*:*
First Time Intel nuc X15 Laptop Kit Laprc710
Intel nuc X15 Laptop Kit Lapkc51e
Intel nuc X15 Laptop Kit Lapkc71f Firmware
Intel nuc X15 Laptop Kit Lapbc710
Intel nuc X15 Laptop Kit Lapac71g
Intel nuc X15 Laptop Kit Lapac71g Firmware
Intel nuc X15 Laptop Kit Lapac71h
Intel nuc X15 Laptop Kit Lapkc71e Firmware
Intel nuc X15 Laptop Kit Lapbc510 Firmware
Intel nuc X15 Laptop Kit Laprc510
Intel nuc X15 Laptop Kit Laprc510 Firmware
Intel nuc X15 Laptop Kit Lapbc510
Intel nuc X15 Laptop Kit Lapkc51e Firmware
Intel nuc X15 Laptop Kit Lapac71h Firmware
Intel nuc X15 Laptop Kit Lapkc71e
Intel
Intel nuc X15 Laptop Kit Laprc710 Firmware
Intel nuc X15 Laptop Kit Lapkc71f
Intel nuc X15 Laptop Kit Lapbc710 Firmware
References () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01022.html - () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01022.html - Vendor Advisory
Summary
  • (es) Una validación de entrada incorrecta en el firmware de algunos Intel(R) NUC puede permitir que un usuario privilegiado habilite potencialmente la escalada de privilegios a través del acceso local.

14 Aug 2024, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-08-14 14:15

Updated : 2024-09-12 18:59


NVD link : CVE-2024-34163

Mitre link : CVE-2024-34163

CVE.ORG link : CVE-2024-34163


JSON object : View

Products Affected

intel

  • nuc_x15_laptop_kit_lapkc71e_firmware
  • nuc_x15_laptop_kit_lapac71g_firmware
  • nuc_x15_laptop_kit_lapbc510_firmware
  • nuc_x15_laptop_kit_lapbc710_firmware
  • nuc_x15_laptop_kit_laprc510_firmware
  • nuc_x15_laptop_kit_lapac71h
  • nuc_x15_laptop_kit_lapac71h_firmware
  • nuc_x15_laptop_kit_lapkc71f_firmware
  • nuc_x15_laptop_kit_lapkc51e_firmware
  • nuc_x15_laptop_kit_lapkc71f
  • nuc_x15_laptop_kit_lapbc710
  • nuc_x15_laptop_kit_laprc510
  • nuc_x15_laptop_kit_laprc710_firmware
  • nuc_x15_laptop_kit_lapbc510
  • nuc_x15_laptop_kit_lapkc51e
  • nuc_x15_laptop_kit_lapkc71e
  • nuc_x15_laptop_kit_laprc710
  • nuc_x15_laptop_kit_lapac71g
CWE
NVD-CWE-noinfo CWE-20

Improper Input Validation